FAQManager.cgi is a Perl script for maintaining a FAQ (Frequently Asked Questions) via a web interface. It will run on most Unix/Linux and Microsoft Windows platforms. FAQManager does not properly filter certain types of input from incoming web requests. It is possible to make a specially crafted web request containing '../' sequences to break out of wwwroot and display arbitrary web-readable files.
FAQManager.cgi is a Perl script for maintaining a FAQ (Frequently Asked Questions) via a web interface. It will run on most Unix/Linux and Microsoft Windows platforms. FAQManager does not properly filter certain types of input from incoming web requests. It is possible to make a specially crafted web request containing '../' sequences to break out of wwwroot and display arbitrary web-readable files.